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Abstract. Monadic effect systems provide a unified way of tracking 
effects of computations, but there is no unified mechanism for tracking 
how computations rely on the environment in which they are executed. 
This is becoming an important problem for modern software - we need 
to track where distributed computations run, which resources a program 
uses and how they use other capabilities of the environment. 

We consider three examples of context-dependence analysis: liveness 
analysis, tracking the use of implicit parameters (similar to tracking of 
resource usage in distributed computation), and calculating caching re¬ 
quirements for dataflow programs. Informed by these cases, we present a 
unified calculus for tracking context dependence in functional languages 
together with a categorical semantics based on indexed comonads. We 
believe that indexed comonads are the right foundation for construct¬ 
ing context-aware languages and type systems and that following an 
approach akin to monads can lead to a widespread use of the concept. 


Modern applications run in diverse environments - such as mobile phones or the 
cloud - that provide additional resources and meta-data about provenance and 
security. For correct execution of such programs, it is often more important to 
understand how they depend on the environment than how they affect it. 

Understanding how programs affect their environment is a well studied area: 
effect systems ESI provide a static analysis of effects and monads [8] provide a 
unified semantics to different notions of effect. Wadler and Thiemann unify the 
two approaches indexing a monad with effect information, and showing that 
the propagation of effects in an effect system matches the semantic propagation 
of effects in the monadic approach. 

No such unified mechanism exists for tracking the context requirements. We 
use the term coeffect for such contextual program properties. Notions of context 
have been previously captured using comonads [H] (the dual of monads) and by 
languages derived from modal logic [12I9J . but these approaches do not capture 
many useful examples which motivate our work. We build mainly on the former 
comonadic direction (Sj3j) and discuss the modal logic approach later (^5]). 

We extend a simply-typed lambda calculus with a coeffect system based on 
comonads, replicating the successful approach of effect systems and monads. 

Examples of coeffects. We present three examples that do not fit the tradi¬ 
tional approach of effect systems and have not been considered using the modal 
logic perspective, but can be captured as coeffect systems (iQ - the tracking of 
implicit dynamically-scoped parameters (or resources), analysis of variable live¬ 
ness, and tracking the number of required past values in dataflow computations. 
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Coeffect calculus. Informed by the examples, we identify a general algebraic 
structure for coeffects. From this, we define a general coeffect calculus that unifies 
the motivating examples (Q and discuss its syntactic properties (Q. 

Indexed comonads. Our categorical semantics (Sj3j) extends the work of Uustalu 
and Vene m- By adding annotations, we generalize comonads to indexed comon¬ 
ads, which capture notions of computation not captured by ordinary comonads. 

1 Motivation 

Effect systems, introduced by Gifford and Lucassen [5], track effects of com¬ 
putations, such as memory access or message-based communication |B]. Their 
approach augments typing judgments with effect information: F b e : r, F. In 
Moggi’s semantics, well-typed terms F b e : r are mapped to morphisms |[F] —> 
M[t] where M encodes effects and has the structure of a monad [5]. Wadler and 
Thiemann annotate monads with effect information, written M F CZI- 

In contrast to the analysis of effects, our analysis of context-dependence dif¬ 
fers in the treatment of lambda abstraction. Wadler and Thiemann explain that 
“in the rule for abstraction, the effect is empty because evaluation immediately 
returns the function, with no side effects. The effect on the function arrow is 
the same as the effect for the function body, because applying the function will 
have the same side effects as evaluating the body ” m- We instead consider 
systems where A-abstraction places requirements on both the call-site (latent re¬ 
quirements) and declaration-site (immediate requirements), resulting in different 
program properties. We informally discuss three examples that demonstrate how 
contextual requirements propagate. Section [2] unifies these in a single calculus. 

We write coeffect judgements C S F he:r where the coeffect annotation s 
associates context requirements with the free-variable context F. Function types 
have the form C s ti —> t 2 associating latent coeffects s with the parameter. The 
C S T syntax and C s r types are a result of the indexed comonadic semantics (ij3]). 

Implicit parameters and resources. Implicit parameters [7] are dynamically- 
scoped variables. They can be used to parameterize a computation without prop¬ 
agating arguments explicitly through a chain of calls and are part of the context 
in which expressions evaluate. As correctly expected [7], they can be modelled 
by comonads. Rebindable resources in distributed computations ( e.g ., a local 
clock) follow a similar pattern, but we discuss implicit parameters for simplicity. 

The following function prints a number using implicit parameters ?culture 
(determining the decimal mark) and ?format (the number of decimal places): 

An.printNumber n Tculture ?format 

Figure [l] shows a type-and-coeffect system tracking the set of an expression’s 
implicit parameters. For simplicity here, all implicit parameters have type p. 

Context requirements are created in (access), while ( var ) requires no implicit 
parameters; (app) combines requirements of both sub-expressions as well as the 
latent requirements of the function. 
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C r T h e x : CVi ->■ r 2 C S F h e 2 : n 
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C rUs {r,x : n) h e : r 2 
CT I- Az.e : (7 s ti —> r 2 


Fig. 1. Selected coeffect rules for implicit parameters 

The (abs) rule is where the example differs from effect systems. Function 
bodies can access the union of the parameters (or resources) available at the 
declaration-site ( C r r ) and at the call-site (C s t\). Two of the nine permissible 
judgements for the above example are: 

C 0 r b (...) : Culture,?format} jnt string 

C {?culture,?format} r h (...) : C^ ?format > int -»• String 

The coeffect system infers multiple, i.e. non-principal, coeffects for functions. 
Different judgments are desirable depending on how a function is used. In the 
first case, both parameters have to be provided by the caller. In the second, 
both are available at declaration-site, but ?format may be rebound (the precise 
meaning is provided by the semantics, discussed in jj3|. 

Implicit parameters can be captured by the reader monad, where parameters 
are associated with the function codomain M 0 (int —> M^ ?culture ’ ?format ^string), 
modelling only the first case. Whilst the reader monad can be extended to model 
rebinding, the next example cannot be structured by any monad. 

Liveness analysis. Liveness analysis detects whether a free variable of an ex¬ 
pression may be used (live) or whether it is definitely not used (dead). A compiler 
can remove bindings to dead variables as the result is never used. 

We start with a restricted analysis and briefly mention how to make it prac¬ 
tical later (^5j). The restricted form is interesting theoretically as it gives rise to 
the indexed partiality comonad (pj), which is a basic but instructive example. 

The coeffect system in Fig. |2j detects whether all free variables are dead 
(C D r) or whether at least one variable is live (C L T). Variable use (var) is 
annotated with L and constants with D, i.e., if c £ N then C D r h c : int. A dead 
context may be marked as live by letting DCL and adding sub-coeffecting (fj2j). 

The (app) rule can be understood by discussing its semantics. Consider se¬ 
mantic functions f, g, h annotated by r, s, t respectively. The sequential composi¬ 
tion g o f is live in its parameter only when both / and g are live. In the coeffect 
semantics, / is not evaluated if g ignores its parameter (regardless of evaluation 
order). Thus, g o / is annotated by conjunction r n s (where L n L = L). A point- 
wise composition of g and h, passing the same parameter to both, is live in its 
parameter if either g or h is live (i.e., disjunction s LI t). Application uses both 
compositions, thus F is live if it is needed by e\ or by the function and by e-2- 


x-.T&r . C r r h ei : CVi ->• r 2 C s r h e 2 : 
C L r b * : r [aPP (jru(snt) r H ei e 2 . 


Fig. 2. Selected coeffect rules for liveness analysis 











Petricek, Orchard, Mycroft 


(wr) 


x:tGT 
C°T b x:r 


(app) 


C m r b ei : c^n ->■ r 2 b e 2 : n 

max(m,n+p) |_ ^ ^ ^ 


(prey) 


C n r b e : r 

C" + i r b prev e : r 




Qtnin(m,n) (g. . Tl ) b e : r 2 

b Ax.e : C7"n -»■ t 2 


Fig. 3. Selected coeffect rules for causal data flow 

An ( abs ) rule (not shown) compatible with the structure in Fig. [l] combines 
the context annotations using n. Thus, if the body uses some variables, both the 
function argument and the context of the declaration-site are marked as live. 

The coeffect system thus provides a call-by-name-style semantics, where re¬ 
dundant computations are omitted. Liveness cannot be modelled using monads 
with denotations t\ —> M r r 2 . In call-by-value languages, the argument n is al¬ 
ways evaluated. Using indexed comonads (fj3j), we model liveness as a morphism 
C r T\ —> r 2 where C r is the parametric type Maybe r = r + 1 (which contains a 
value r when r = L and does not contain value when r = D). 

Efficient dataflow. Dataflow languages ( e.g ., Lucid fTS] ) declaratively describe 
computations over streams. In causal data flow, programs may access past values. 
In this setting, a function t\ —t r 2 becomes a function from a list of historical 
values [ti] — > r 2 . A coeffect system here tracks how many past values to cache. 

Figure[3] annotates contexts with an integer specifying the maximum number 
of required past values. The current value is always present, so ( var ) is annotated 
with 0. The expression prev e gets the previous value of stream e and requires 
one additional past value (prev)] e.g. prev (prev e) requires 2 past values. 

The (app) rule follows the same intuition as for liveness. Sequential compo¬ 
sition adds the tags (the first function needs n+p past values to produce p past 
inputs for the second function); passing the context to two subcomputations 
requires the maximum number of the elements required by the two subcompu¬ 
tations. The (abs) rule for data-flow needs a distinct operator - min - therefore, 
the declaration-site and call-site must each provide at least the number of past 
values required by the function body (as the body may use variables coming 
from the declaration-site as well as the argument). 

Soundness follows from our categorical model (Sj3]). Uustalu and Vene model 
causal dataflow by a non-empty list comonad NeList r = r x (NeList r + 1) [TTI . 
However, this model leads to (inefficient) unbounded lists of past elements. The 
coeffect system above infers a (sound) over-approximation of the number of 
required past elements and so fixed-length lists may be used instead. 


2 Generalized coeffect calculus 

The previous three examples exhibit a number of commonalities. We capture 
these in the coeffect calculus. We do not overly restrict the calculus to allow for 
notions of context-dependent computations not discussed above. 
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The syntax of our calculus is that of the simply-typed lambda calculus (where 
v ranges over variables, T over base types, and r over coeffect annotations): 

e ::= v \ Xv.e | ei e-i t ::= T | n t% ( C r T 

The type C r T captures values of type t in a context specified by the an¬ 
notation r. This type appears only on the left-hand side of a function arrow 
C r T\ —> T2- In the semantics, C r corresponds to some data type (e.g.. List or 
Maybe). Extensions such as explicit let-binding are discussed later (©• 

The coeffect tags r, that were demonstrated in the previous section, can be 
generalized to a structure with three binary operators and a particular element. 

Definition 1. A coeffect algebra ( S , ®, V, A, e) is a set S with an element e £ S, 
a semi-lattice (5, V), a monoid (S', ®,e), and a binary A. That is, Vr, s,t £ S: 

r®(s®t) = (r®s)®t e®r = r = r®e (monoid) 

rVs = sVr rV(sVt) = (rVs)Vf r V r = r (semi-lattice) 

The generalized coeffect calculus captures the three motivating examples (Q, 
where some operators of the coeffect algebra may coincide. 

The ® operator represents sequential composition; guided by the categorical 
model (ij3]), we require it to form a monoid with e. The operator V corresponds to 
merging of context requirements in pointwise composition and the semi-lattice 
(S, V) defines a partial order: r < s when r V s = s. This ordering implies a 
sub-coeffecting rule. The coeffect e is often the top or bottom of the lattice. 

The A operator corresponds to splitting requirements of a function body 
between the call- and definition-site. This operator is unrestricted in the general 
system, though it has additional properties in some coeffects systems, e.g., semi¬ 
lattice structure on A. Possibly these laws should hold for all coeffect systems, 
but we start with as few laws as possible to avoid limiting possible uses of the 
calculus. We consider constrained variants with useful properties later (Sjdj). 

Implicit parameters use sets of names S = T’(ld) as tags with union U for all 
three operators. Variable use is annotated with e = 0 and < is subset ordering. 

Liveness uses a two point lattice S = {D, L} where DLL, Variables are anno¬ 
tated with the top element e = L and constants with bottom D. The V operation 
is LI (join) and A and ® are both n (meet). 

Dataflow tags are natural numbers S = N and operations V, A and ® correspond 
to max, min and +, respectively. Variable use is annotated with e = 0 and the 
order < is the standard ordering of natural numbers. 

Coeffect typing rules. Figure [2] shows the rules of the coeffect calculus, given 
some coeffect algebra (S, ®, V, A, e). The context required by a variable ( var) is 
annotated with e. The sub-coeffecting rule (sub) allows the contextual require¬ 
ments of an expression to be generalized. 

The ( abs ) rule checks the body of the function in a context r A s, which 
is a combination of the coeffects available in the context r where the function 
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( var) 


x-.r&r 
C e r b x:t 


( app ) 


b ei : C*n ->■ r 2 C a -T b e 2 : n 

c .rV( s ®i) r h e i g 2 : T2 


(sm6) 


CT b e : r 

err b e : t 


(s<r) 


(abs) 


C rAs (r, x : ri) b e : t 2 
C r T b Ax.e : C s n -> r 2 


Fig. 4. Type and coeffect system for the coeffect calculus 

is defined and in a context s provided by the caller of the function. Note that 
none of the judgements create a value of type C r r. This type appears only 
immediately to the left of an arrow C r Ti —> t 2 . 

In function application {app), context requirements of both expressions and 
the function are combined as previously: the pointwise composition V is used to 
combine the coeffect r of the expression representing a function and the coeffects 
of the argument, sequentially composed with the coeffects of the function: s ® t. 

For space reasons, we omit recursion. We note that this would require adding 
coeffect variables and extending the coeffect algebra with a fixed-point operation. 


3 Coeffect semantics using indexed comonads 

The approach of categorical semantics interprets terms as morphisms in some 
category. For typed calculi, typing judgments x\ : T\... x n : r n b c : r are 
usually mapped to morphisms [ti] X ... X [r n ] —> [r]. Moggi showed the se¬ 
mantics of various effectful computations can be captured generally using the 
{strong) monad structure [5]. Dually, Uustalu and Vene showed that {monoidal) 
comonads capture various kinds of context-dependent computation [ 13 ] . 

We extend Uustalu and Vene’s approach to give a semantics for the coeffect 
calculus by generalising comonads to indexed comonads. We emphasise semantic 
intuition and abbreviate the categorical foundations for space reasons. 

Indexed comonads. Uustalu and Vene’s approach interprets well-typed terms 
as morphisms C{ti X... Xt„) —> r, where C encodes contexts and has a comonad 
structure BU Indexed comonads comprise a family of object mappings C r in¬ 
dexed by a coeffect r describing the contextual requirements satisfied by the 
encoded context. We interpret judgments C r {xi : t-\, ..., x n : r„) b e : r as 
morphisms C r ([r 1 ] x ... x [r n ]) -b [r]. 

The indexed comonad structure provides a notion of composition for compu¬ 
tations with different contextual requirements. 

Definition 2. Given a monoid {S, 0,e) with binary operator ® and unit e, an 
indexed comonad over a category C comprises a family of object mappings C r 
where for all r £ S and A £ obj(C) then C r A £ obj (C ) and: 

— a natural transformation ea '■ C e A A, called the counit; 

— a family of mappings (—from morphisms C r A —» B to 
morphisms C r ® s A —> C S B in C, natural in A,B, called coextend; 
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such that for all f : C r T\ —► t 2 and g : C s t 2 —> 73 the following equations hold: 

S °fr U = / ( ff )l,r = id (S 0 /rUU),i = ^ 0 4( S ®t) 

The coextend operation gives rise to an associative composition operation for 
computations with contextual requirements (with counit as the identity): 

6 : (C r n -4 r 2 ) -4 [C s t 2 -4 r 3 ) -4 (C r ® s T 1 4r 3 ) g°f =g° f^ s 

The composition 6 best expresses the intention of indexed comonads: contextual 
requirements of the composed functions are combined. The properties of the 
composition follow from the indexed comonad laws and the monoid (S, ®,e). 

Example 1. Indexed comonads are analogous to comonads (in coKleisli form), 
but with the additional monoidal structure on indices. Indeed, comonads are a 
special case of indexed comonads with a trivial singleton monoid, e.g., ({1}, *, 1) 
with 1*1 = 1 where C 1 is the underlying functor of the comonad and e and 
(—)| x are the usual comonad operations. However, as demonstrated next, not 
all indexed comonads are derived from ordinary comonads. 

Example 2. The indexed partiality comonad encodes free-variable contexts of 
a computation which are either live or dead (be., have liveness coeffects) with 
the monoid ({D, L},n, L), where C L A = A encodes live contexts and C D A = 1 
encodes dead contexts, where 1 is the unit type inhabited by a single value (). The 
counit operation e : C L A —► A and coextend operations /t : C rUs A -4 C S B 
(for all / : C r A -4 B), are defined: 

ex = x fl D x = () fb,L x = /() fl,D x = 0 fl,t x = f x 

The indexed family C r here is analogous to the non-indexed Maybe (or option) 
data type Maybe A = A + 1. This type does not permit a comonad structure 
since e : Maybe A -4 A is undefined at (inr ())- For the indexed comonad, e need 
only be defined for C L A = A. Thus, indexed comonads capture a broader range 
of contextual notions of computation than comonads. 

Moreover, indexed comonads are not restricted by the shape preservation 
property of comonads HU: that a coextended function cannot change the shape 
of the context. For example, in the second case above fb L : C D A -4 C L B where 
the shape changes from 1 (empty context) to B (available context). 

Monoidal indexed comonads. Indexed comonads provide a semantics to 
sequential composition, but additional structure is needed for the semantics of 
the full coeffect calculus. Uustalu and Vene m additionally require a ( lax semi-) 
monoidal comonad structure, which provides a monoidal operation m : CA x 
CB -4 C(A x B) for merging contexts (used in the semantics of abstraction). 

The semantics of the coeffect calculus requires an indexed lax semi-monoidal 
structure for combining contexts as well as an indexed colax monoidal structure 
for splitting contexts. These are provided by two families of morphisms (given a 
coeffect algebra with V and A): 
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[< CT \- Xx.e : C S T\ —> t 2 ] = curry (|[C' T ' As (r, x : ti) b e : r 2 ] o m riS ) 

U C rv( s ©t) r |_ 6l e2 . T j _ ( uncurr y [CT \- ei : C t Ti *4 r 2 ]) o 
(id x [<7»r h e 2 : n]I tt ) o n r , sffit o 
[CT h® i ?^ = 7r < oe 

Fig. 5. Categorical semantics for the coeffect calculus 

- m r s : C r A x C S B -4 C( rAs )(A X B) natural in A, B- 

- n r ,l : C^ S \A xB)d C r A x U s 5 natural in A, B; 

The m riS operation merges contextual computations with tags combined by A 
(greatest lower-bound), elucidating the behaviour of m riS : that merging may 
result in the loss of some parts of the contexts r and s. 

The n r>s operation splits context-dependent computations and thus the con¬ 
textual requirements. To obtain coeffects r and s, the input needs to provide at 
least r and s , so the tags are combined using the V operator (least upper-bound). 

For the sake of brevity, we elide the indexed versions of the laws required by 
Uustalu and Vene ( e.g ., most importantly, merging and splitting are associative). 

Example 3. For the indexed partiality comonad, given the liveness coeffect 
algebra ({D, L}, n, U, n, L), the additional lax/colax monoidal operations are: 

m L ,L (x,y) = (x,y) n D , D () = ((),()) n D>L (a:, y) = ((), y) 
m r,s (x, y) = () n L , D (a;, y) = (x, ()) n L ,L(z, y) = {x, y) 

Example 4. Uustalu and Vene model causal dataflow computations using the 
non-empty list comonad NEList A = Ax (1 + NEList A) [TJ]. Whilst this comonad 
implies a trivial indexed comonad, we define an indexed comonad with integer 
indices for the number of past values demanded of the context. 

We define C n A = Ax (Ax ... x A) where the first A is the current (always 
available) value, followed by a finite product of n past values. The definition of 
the operations is a straightforward extension of the work of Uustalu and Vene. 

Categorical Semantics. Figure [5] shows the categorical semantics of the 
coeffect calculus using additional operations 7r, : for projection of the i th element 
of a product, usual curry and uncurry operations, and A : A^AxA duplicating 
a value. While C r is a family of object mappings, it is promoted to a family of 
functors with the derived morphism mapping C r (f) = (f o e)| r . 

The semantics of variable use and abstraction are the same as in Uustalu 
and Vene’s semantics, modulo coeffects. Abstraction uses m r>s to merge the 
outer context with the argument context for the context of the function body. 
The indices of e for e and r,s for m rjS match the coeffects of the terms. The 
semantics of application is more complex. It first duplicates the free-variable 
values inside the context and then splits this context using rv,^. The two 
contexts (with different coeffects) are passed to the two sub-expressions, where 
the argument subexpression, passed a context (s ® t), is coextended to produce 
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a context t which is passed into the parameter of the function subexpression (c/. 
given / : A —► (B —>■ C), g : A —>■ B, then uncurry f o ( id x g) o A : A —)• C). 

A semantics for sub-coeffecting is omitted, but may be provided by an op¬ 
eration i r . jS : C r A —> C s A natural in A, for all r, s £ S where s < r, which 
transforms a value C r A to C s A by ignoring some of the encoded context. 

4 Syntax-based equational theory 

The operational semantics of every context-dependent language here differs as 
the notion of context is always different. However, for coeffect calculi satisfying 
certain conditions we can define a universal equational theory. This suggests 
a pathway to an operational semantics for two out of our three examples (the 
notion of context for data-flow is more complex). 

In a pure A-calculus, /3- and 77 -equality for functions (also called local sound¬ 
ness and completeness respectively PI) describe how pairs of abstraction and 
application can be eliminated: (Aa;.e 2 )ei =,3 e\[x <- e 2 ] and (Xx.ex) = ri e. The 
/3-equality rule, using the usual Barendregt convention of syntactic substitution, 
implies a reduction, giving part of an operational semantics for the calculus. 

The call-by-name evaluation strategy modelled by /3-reduction is not suitable 
for impure calculi therefore a restricted /3 rule, corresponding to call-by-value, is 
used, i.e. (Xx.e, 2 )v = e 2 [x <— v] . Such reduction can be encoded by a tef-binding 
term, let x = e\ in e 2 , which corresponds to sequential composition of two 
computations, where the resulting pure value of e\ is substituted into e 2 [418] . 

For an equational theory of coeffects, consider first a notion of tef-binding 
equivalent to (Aa;.e 2 ) ex, which has the following type and coeffect rule: 

C s r \- ex : Ti C rlAr2 (r, x : n) h e 2 : r 2 

(jnw{r 2 ®s)p I— let a: = ex in e 2 : r 2 

For our examples, A is idempotent (i.e., r A r = r) implying a simpler rule: 

C s r h ex : Tx C r (r,x:T 1 )\-e 2 :T 2 

C rv(r® s ) r h let x = ex in e 2 : r 2 

For our examples (but not necessarily all coeffect systems), this defines a more 
“precise” coeffect with respect to < where r V (r ® s) < n V (r 2 ® s). 

This rule removes the non-principality of the first rule (i.e., multiple possible 
typings). However, using idempotency to split coeffects in abstraction would 
remove additional flexibility needed by the implicit parameters example. 

The coeffect r V (r ffi s) can also be simplified for all our examples, leading 
to more intuitive rules - for implicit parameters rU(rUs) =rUs; for liveness 
we get that r LI (r n s) = r and for dataflow we obtain max(r, r + s) = r + s. 

Our calculus can be extended with let-binding and ([2]). However, we also 
consider the cases when a syntactic substitution e 2 [a: <- ex] has the coeffects 
specified by the above rule ([ 2 ]) and prove subject reduction theorem for certain 
coeffect calculi. We consider two common special cases when the coeffect of 
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variables e is the greatest (T) or least :|jL| element of the semi-lattice (S, V) and 
derive additional properties that hold about the coeffect algebra: 

Lemma 1 (Substitution). Given C r (r,x : 72 ) b ei : Ti and C S T b e 2 : T 2 
then C rW ' rms T |- e 2 [x <— e±] : n if the coeffect algebra satisfies the conditions 
that e is either the greatest or least element of the semi-lattice, ® = A, and ® 
distributes over V, i.e., X ® (Y V Z) = (X ® Y) V (X ® Z). 

Proof. By induction over b, using the laws (jj2| and additional assumptions. □ 

Assuming —is the usual call-by-name reduction, the following theorem 
models the evaluation of coeffect calculi with coeffect algebra that satisfies the 
above requirements. We do not consider call-by-value , because our calculus does 
not have a notion of value, unless explicitly provided by /ei-binding (even a 
function “value” Xx.e may have immediate contextual requirements). 

Theorem 1 (Subject reduction). For a coeffect calculus, satisfying the con¬ 
ditions of Lemma\ 7J if CT b e : r and e e' then C r r b e' : r. 

Proof. A direct consequence of Lemma [I] □ 

The above theorem holds for both the liveness and resources examples, but 
not for dataflow. In the case of liveness, e is the greatest element (r V e = e); in 
the case of resources, e is the least element (r V e = r) and the proof relies on 
the fact that additional context requirements can be placed at the context C r r 
(without affecting the type of function when substituted under A-abstraction). 

However, the coeffect calculus also captures context-dependence in languages 
with more complex evaluation strategies than call-by-name reduction based on 
syntactic substitution. In particular, syntactic substitution does not provide a 
suitable evaluation for dataflow (because a substituted expression needs to cap¬ 
ture the context of the original scope). 

Nevertheless, the above results show that - unlike effects - context-dependent 
properties can be integrated with call-by-name languages. Our work also provides 
a model of existing work, namely Haskell implicit parameters [7]. 


5 Related and further work 

This paper follows the approaches of effect systems |5I13I17| and categorical 
semantics based on monads and comonads [8114] . Syntactically, coeffects differ 
from effects in that they model systems where A-abstraction may split contextual 
requirements between the declaration-site and call-site. 

Our indexed (monoidal) comonads (j |3| fil l the gap between (non-indexed) 
(monoidal) comonads of Uustalu and Vene [TTj and indexed monads of Atkey [2], 
Wadler and Thiemann m- Interestingly, indexed comonads are more general 
than comonads, capturing more notions of context-dependence (Q. 
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Comonads and modal logics. Bierman and de Paiva [3] model the □ modality 
of an intuitionistic S4 modal logic using monoidal comonads, which links our 
calculus to modal logics. This link can be materialized in two ways. 

Pfenning et al. and Nanevski et al. derive term languages using the Curry- 
Howard correspondence |12I3I9| , building a metalanguage (akin to Moggi’s monadic 
metalanguage [S]) that includes □ as a type constructor. For example, in [T2] . 
the modal type Dr represents closed terms. In contrast, the semantic approach 
uses monads or comonads only in the semantics. This has been employed by 
Uustalu and Vene and (again) Moggi [8114] . We follow the semantic approach. 

Nanevski et al. extend an S4 term language to a contextual modal type 
theory (CMTT) JS] . The context is a set of variables required by a computation, 
which makes CMTT useful for meta-programming and staged computations. 
Our contextual types are indexed by a coeffect algebra, which is more general 
and can capture variable contexts, but also integers, two-point lattices, etc.. 

The work on CMTT suggests two extensions to coeffects. The first is devel¬ 
oping the logical foundations. We briefly considered special cases of our system 
that permits local soundness in £0 local completeness can be treated similarly. 
The second is developing a coeffect metalanguage. The use of coeffect algebras 
provides an additional flexibility over CMTT, allowing a wider range of applica¬ 
tions via a richer metalanguage. 


Relating effects and coeffects. The difference between effects and coeffects 
is mainly in the ( abs) rule. While the semantic models (monads vs. comonads) 
are different, they can be extended to obtain equivalent syntactic rules. To allow 
splitting of implicit parameters in lambda abstraction, the reader monad needs 
an operation that eagerly performs some effects of a function: (n — > M r ® s T 2 ) —> 
M r (r i —¥ M s t 2 ). To obtain a pure lambda abstraction for coeffects, we need to 
restrict the m rvs operation of indexed comonads, so that the first parameter is 
annotated with e (meaning no effects): C e A x C r B —>• C r (A x B). 

Structural coeffects. To make the liveness analysis practical, we need to as¬ 
sociate information with individual variables (rather than the entire context). 
We can generalize the calculus from this paper by adding a product operation x 
to the coeffect algebra. A variable context x : T\,y : t^,z : t$ is then annotated 
with rxsxt where each component of the tag corresponds to a single variable. 
The system is then extended with structural rules such as: 


(abs) 


C rxs (r,x : n) h e : r 2 
C r r b Xx.e : C s t x t 2 


(contr) 


C rxs (x : T ly y : n) h e : r 2 
C rWs (z : T\) h e[x <— z][y z] : r 2 


The context requirements associated with function are exactly those linked to the 
specific variable of the lambda abstraction. Rules such as contraction manipulate 
variables and perform a corresponding operation on the indices. 

The structural coeffect system is related to bunched typing [10] (but gener¬ 
alizes it by adding indices). We are currently investigating how to use structural 
coeffects to capture fine-grained context-dependence properties such as secure 
information flow ns ° r > more generally, those captured by the dependency core 
calculus PQ. 
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6 Conclusions 

We examined three simple calculi with associated coeffect systems (liveness anal¬ 
ysis, implicit parameters, and dataflow analysis). These were unified in the coef¬ 
fect calculus, providing a general coeffect system parameterised by an algebraic 
structure describing propagation of context requirements throughout a program. 

We model the semantics of the coeffect calculus using the indexed (monoidal) 
comonad structure - a novel structure, which is more powerful than (monoidal) 
comonads. Indices of the indexed comonad operations manifest the semantic 
propagation of context so that the propagation of information in the general 
coeffect type system corresponds exactly to the semantic propagation of context 
in our categorical model. 

We consider the analysis of context to be essential, not least for the examples 
here but also given increasingly rich and diverse distributed systems. 

Acknowledgements. We thank Gavin Bierman, Tarmo Uustalu, Varmo Vene and 
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